Try clean harbor
This commit is contained in:
parent
07797d7618
commit
f25de5e71a
@ -17,7 +17,7 @@ spec:
|
|||||||
destination:
|
destination:
|
||||||
server: https://kubernetes.default.svc
|
server: https://kubernetes.default.svc
|
||||||
namespace: dev-tools
|
namespace: dev-tools
|
||||||
syncPolicy:
|
# syncPolicy:
|
||||||
automated:
|
# automated:
|
||||||
prune: true
|
# prune: true
|
||||||
selfHeal: true
|
# selfHeal: true
|
||||||
|
|||||||
@ -1,42 +1,34 @@
|
|||||||
expose:
|
expose:
|
||||||
type: ingress
|
type: ingress
|
||||||
tls:
|
tls:
|
||||||
# Enable TLS with external secret (Cloudflare Origin Certificate for now)
|
|
||||||
enabled: true
|
enabled: true
|
||||||
# Use "secret" to reference pre-created TLS secret
|
|
||||||
certSource: secret
|
certSource: secret
|
||||||
secret:
|
secret:
|
||||||
# Secret created manually with Cloudflare Origin Certificate
|
secretName: harbor-ingress
|
||||||
# Will be managed by cert-manager after March 23
|
|
||||||
secretName: "harbor-ingress"
|
|
||||||
ingress:
|
ingress:
|
||||||
className: traefik
|
className: traefik
|
||||||
annotations:
|
annotations:
|
||||||
# NO cert-manager annotation during Phase 1 (manual certificate)
|
cert-manager.io/cluster-issuer: letsencrypt
|
||||||
# Add back on March 23 for automatic Let's Encrypt management
|
|
||||||
# Traefik specific annotations for HTTPS routing
|
|
||||||
traefik.ingress.kubernetes.io/router.entrypoints: websecure
|
traefik.ingress.kubernetes.io/router.entrypoints: websecure
|
||||||
traefik.ingress.kubernetes.io/router.tls: "true"
|
traefik.ingress.kubernetes.io/router.tls: "true"
|
||||||
hosts:
|
hosts:
|
||||||
core: harbor.dvirlabs.com
|
core: harbor.dvirlabs.com
|
||||||
notary: notary.dvirlabs.com
|
|
||||||
|
|
||||||
externalURL: https://harbor.dvirlabs.com
|
externalURL: https://harbor.dvirlabs.com
|
||||||
|
|
||||||
harborAdminPassword: "SuperSecurePassword123"
|
harborAdminPassword: "SuperSecurePassword123"
|
||||||
|
|
||||||
|
notary:
|
||||||
|
enabled: false
|
||||||
|
|
||||||
persistence:
|
persistence:
|
||||||
enabled: true
|
enabled: true
|
||||||
resourcePolicy: "keep"
|
resourcePolicy: keep
|
||||||
persistentVolumeClaim:
|
persistentVolumeClaim:
|
||||||
registry:
|
registry:
|
||||||
storageClass: nfs-client
|
storageClass: nfs-client
|
||||||
accessMode: ReadWriteOnce
|
accessMode: ReadWriteOnce
|
||||||
size: 400Gi
|
size: 400Gi
|
||||||
chartmuseum:
|
|
||||||
storageClass: nfs-client
|
|
||||||
accessMode: ReadWriteOnce
|
|
||||||
size: 5Gi
|
|
||||||
jobservice:
|
jobservice:
|
||||||
storageClass: nfs-client
|
storageClass: nfs-client
|
||||||
accessMode: ReadWriteOnce
|
accessMode: ReadWriteOnce
|
||||||
@ -57,33 +49,18 @@ persistence:
|
|||||||
database:
|
database:
|
||||||
type: internal
|
type: internal
|
||||||
|
|
||||||
|
redis:
|
||||||
|
type: internal
|
||||||
|
|
||||||
trivy:
|
trivy:
|
||||||
enabled: true
|
enabled: true
|
||||||
|
|
||||||
metrics:
|
metrics:
|
||||||
enabled: true
|
enabled: true
|
||||||
core:
|
|
||||||
enabled: true
|
|
||||||
path: /metrics
|
|
||||||
port: 8001
|
|
||||||
exporter:
|
|
||||||
enabled: true
|
|
||||||
path: /metrics
|
|
||||||
port: 8001
|
|
||||||
jobservice:
|
|
||||||
enabled: true
|
|
||||||
path: /metrics
|
|
||||||
port: 8001
|
|
||||||
registry:
|
|
||||||
enabled: true
|
|
||||||
path: /metrics
|
|
||||||
port: 8001
|
|
||||||
|
|
||||||
exporter:
|
exporter:
|
||||||
enabled: true
|
enabled: true
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
cache:
|
cache:
|
||||||
enabled: true
|
enabled: true
|
||||||
|
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user